IP address
Shodan(more info)

Passive DNS

- Warden events (26)
- 2026-06-17
-
- ReconScanning (node.86eb21): 1
- 2026-06-15
-
- ReconScanning (node.86eb21): 1
- 2026-06-14
-
- ReconScanning (node.86eb21): 1
- 2026-06-13
-
- ReconScanning (node.86eb21): 1
- 2026-06-08
-
- ReconScanning (node.86eb21): 1
- 2026-05-22
-
- ReconScanning (node.f90c6b): 3
- 2026-05-15
-
- ReconScanning (node.86eb21): 1
- 2026-05-03
-
- ReconScanning (node.86eb21): 1
- 2026-04-24
-
- ReconScanning (node.86eb21): 1
- 2026-04-21
-
- ReconScanning (node.86eb21): 1
- 2026-04-18
-
- ReconScanning (node.86eb21): 1
- 2026-04-10
-
- ReconScanning (node.86eb21): 1
- 2026-04-08
-
- ReconScanning (node.f90c6b): 3
- 2026-04-05
-
- ReconScanning (node.86eb21): 1
- 2026-04-03
-
- ReconScanning (node.f90c6b): 3
- ReconScanning (node.86eb21): 1
- 2026-03-25
-
- ReconScanning (node.86eb21): 1
- 2026-03-21
-
- ReconScanning (node.86eb21): 3
Threat categories
| TL | Role | Category | Details |
|---|---|---|---|
| 25 | src | scan |
- Origin AS
- AS41798 - TTC-AS
- BGP Prefix
- 195.58.52.0/24
- dshield
- []
- geo
- Kazakhstan, Astana
- 🕑 Asia/Almaty
- hostname
- kzastip1.idfnv.net
- Address block ('inetnum' or 'NetRange' in whois database)
- 195.58.32.0 - 195.58.63.255
- last_activity
- 2026-06-17 01:24:05
- last_warden_event
- 2026-06-17 01:24:05
- rep
- 0.00971369046172188
- reserved_range
- 0
- Shodan's InternetDB
- Open ports: 13, 17, 19, 26, 43, 49, 70, 80, 84, 119, 135, 143, 195, 264, 465, 902, 992, 1099, 1234, 1249, 1337, 1925, 1978, 2050, 2087, 2222, 2345, 2404, 3541, 3689, 4000, 4150, 4282, 4444, 4500, 4506, 4567, 4840, 4848, 4911, 5435, 5560, 5606, 5858, 5938, 6363, 6510, 6514, 6666, 7087, 7415, 7657, 7777, 7779, 8085, 8123, 8129, 8181, 8200, 8334, 8488, 8545, 8594, 8800, 8854, 8883, 9002, 9042, 9081, 9092, 9144, 9170, 9183, 9191, 9213, 9898, 9999
- Tags: honeypot
- CPEs: –
- ts_added
- 2024-08-27 05:04:25.552000
- ts_last_update
- 2026-06-17 05:04:49.685000
Warden event timeline
DShield event timeline

